Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
jdsauer77
New Contributor

Client <ip.ad.dr.ess> control connection finished

I have several log entries in my VPN event manager for L2TP that state the client control connection finished. The problem I have is that there isn't an L2TP connection allowed on my Fortigate at the moment. How are L2TP connections being finished if they aren't allowed in the first place?

1 REPLY 1
AEK
SuperUser
SuperUser

I guess these are VPN connection attempts to your FortiGate, and this is just normal from scan bots.

This cannot be blocked with regular firewall rule. If you don't want to see them anymore, either disable the existing IPsec tunnels (if you don't need them) or use "config firewall local-in-policy" to filter IKE connections from the GeoIP you want.

AEK
AEK
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors